Skip to content

Commit 64f887b

Browse files
committed
responds to Jatin's feedback, other minor fixes
1 parent ae769b1 commit 64f887b

File tree

1 file changed

+7
-7
lines changed

1 file changed

+7
-7
lines changed

solutions/security/get-started/siem-migration.md

Lines changed: 7 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -11,7 +11,7 @@ You can ingest your data before migrating your rules, or migrate your rules firs
1111
::::{admonition} Requirements
1212
* A working [LLM connector](/solutions/security/ai/set-up-connectors-for-large-language-models-llm.md).
1313
* {{stack}} users: an [Enterprise](https://www.elastic.co/pricing) subscription.
14-
* {{Stack users}}: {{ml}} must be enabled.
14+
* {{Stack}} users: {{ml}} must be enabled.
1515
* {{serverless-short}} users: a [Security Complete](../../../deploy-manage/deploy/elastic-cloud/project-settings.md) subscription.
1616

1717
::::
@@ -41,7 +41,7 @@ You can ingest your data before migrating your rules, or migrate your rules firs
4141
```
4242
Which would download rules related to just the `splunksysmonsecurity` app.
4343

44-
We don't recommend downloading all searches (for example with`| rest /servicesNS/-/-/saved/searches`) since most of the data will be irrelevant to SIEM rule migration.
44+
We don't recommend downloading all searches (for example with `| rest /servicesNS/-/-/saved/searches`) since most of the data will be irrelevant to SIEM rule migration.
4545
::::
4646

4747
5. Select your JSON file and click **Upload**.
@@ -74,11 +74,11 @@ The table's fields are as follows:
7474

7575
| Splunk severity | Elastic rule severity |
7676
| ------- | ----------- |
77-
| (Info) | Low |
78-
| (Low) | Low |
79-
| (Medium) | Medium |
80-
| (High) | High |
81-
| (Critical) | Critical |
77+
| 1 (Info) | Low |
78+
| 2 (Low) | Low |
79+
| 3 (Medium) | Medium |
80+
| 4 (High) | High |
81+
| 5 (Critical) | Critical |
8282

8383
* **Author:** Shows one of two possible values: `Elastic`, or `Custom`. Elastic authored rules are created by Elastic and update automatically. Custom rules are translated by the SIEM migration tool or your team, and do not update automatically.
8484
* **Integrations:** Shows the number of Elastic integrations that must be installed to provide data for the rule to run successfully.

0 commit comments

Comments
 (0)